You are on page 1of 4

review your answers and try again.

Retake
check
1.
Select the option that displays IAM roles from general to specific.
checkBasic roles, predefined roles, custom roles

Predefined roles, custom roles, basic roles

Custom roles, predefined roles, basic roles

Correct!

check
2.
Which statement best describes how Google Cloud resources are associated within the
resource hierarchy?
checkAll Google Cloud resources are associated with a project.

All Google Cloud resources are associated with an organization.

All Google Cloud resources are associated with a folder.

Google Cloud resources are not associated with the resource hierarchy.

Correct! All Google Cloud resources are associated with a project.

close
3.
When would you choose to have an organization node? (Select two)

Note: To get credit for a multiple-select question, you must select all of the correct
options and none of the incorrect ones.

When you want to create folders


checkWhen you want to centrally apply organization-wide policies

Correct! Organization nodes let you apply policies centrally.

closeWhen you want to organize resources into projects


Review the lecture "The Google Cloud resource hierarchy."

There’s no choice; organization nodes are mandatory.


check
4.
What is the difference between Identity and Access Management (IAM) basic roles and
IAM predefined roles?
checkBasic roles affect all resources in a Google Cloud project. Predefined roles apply
to a specific service in a project.

Basic roles only apply to the owner of the Google Cloud project. Predefined roles can
be associated with any user.

Basic roles only allow viewing, creating, and deleting resources. Predefined roles
allow any modification.

Basic roles can only be granted to single users. Predefined roles can be associated
with a group.

Correct!

check
5.
Which way of accessing Google Cloud lets you control services through the code you
write?

The Cloud Console


checkAPIs

The Cloud SDK and Cloud Shell

The Cloud Console mobile app

Correct!

close
6.
How does the resource hierarchy control how IAM policies are inherited?
IAM policies that are implemented higher in the resource hierarchy deny access that
is granted by lower-level policies.
closeIAM policies are only implemented at the project level; they cannot be amended by
lower levels of the resource hierarchy.

IAM policies that are implemented by lower-level policies can override the policies
defined at a higher level.

Review the lecture Google Cloud resource hierarchy."

close
7.
Your company has two Google Cloud projects and you want them to share policies.
What is the least error-prone way to set this up?

Duplicate all the policies from one project onto the other.
closeCreate shared resource policies on the common resources that are used in both
projects.

Place both projects into a folder, and define the policies on that folder.

Define the new shared policy in the organization node.

Review the lecture "The Google Cloud resource hierarchy."

close
8.
Consider a single hierarchy of Google Cloud resources. Which of these situations is
possible? (Choose 3 responses.)

Note: To get credit for a multiple-select question, you must select all of the correct
options and none of the incorrect ones.

checkThere is no organization node, and there are no folders.

Correct!

closeThere are two or more organization nodes.

Review the lecture "The Google Cloud resource hierarchy."


There is an organization node, and there are no folders.

There is no organization node, but there is at least one folder.


checkThere is an organization node, and there is at least one folder.

Correct!

You might also like